<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.msdn.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>BenkoBLOG : IIS</title><link>http://blogs.msdn.com/benko/archive/tags/IIS/default.aspx</link><description>Tags: IIS</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>MSDN Security Session Links</title><link>http://blogs.msdn.com/benko/archive/2008/01/17/msdn-security-session-links.aspx</link><pubDate>Thu, 17 Jan 2008 10:04:41 GMT</pubDate><guid isPermaLink="false">91d46819-8472-40ad-a661-2c78acb4018c:7140399</guid><dc:creator>benko</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.msdn.com/benko/comments/7140399.aspx</comments><wfw:commentRss>http://blogs.msdn.com/benko/commentrss.aspx?PostID=7140399</wfw:commentRss><wfw:comment>http://blogs.msdn.com/benko/rsscomments.aspx?PostID=7140399</wfw:comment><description>&lt;div class="wlWriterSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:e72f9411-899e-496c-ac05-4b91ce0e5f29" style="padding-right: 0px; display: inline; padding-left: 0px; padding-bottom: 0px; margin: 0px; padding-top: 0px"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/MSDN" rel="tag"&gt;MSDN&lt;/a&gt;&lt;/div&gt;  &lt;p&gt;&lt;a href="http://msdnevents.com/default.aspx?sid=9"&gt;MSDN Events&lt;/a&gt; is back! It's a new year and this week I'm back on the road delivering MSDN events again. The topics we're covering include ASP.NET Membership, IIS 7.0 and Hacker Tricks...we show how the exploits work and what you can do to prevent them. In the presentation we've got a number of links to more information and to make it easier I'm including those links here for easy access. &lt;/p&gt;  &lt;p&gt;These links include the following: &lt;/p&gt;  &lt;p&gt;&lt;strong&gt;IIS 7.0 - What's new for developers&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.iis.net/articles/view.aspx/IIS7/Explore-IIS7/Getting-Started/Introduction-to-IIS-7-Architecture"&gt;iis.net - Introduction to IIS 7 Architecture&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.iis.net/articles/view.aspx/IIS7/Use-IIS7-Administration-Tools/Using-XML-Configuration/IIS7-Configuration-Reference"&gt;iis.net - IIS7 Configuration Reference&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn2.microsoft.com/en-us/library/ms734677%28VS.90%29.aspx"&gt;MSDN - Hosting in Windows Process Activation Service&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.iis.net/articles/onepagearticle.ashx/IIS7/Explore-IIS7/Getting-Started/Your-Web-Platform-Security"&gt;iis.net - Your Web Platform Security&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.iis.net/articles/view.aspx/IIS7/Managing-IIS7/Configuring-the-IIS7-Runtime/Configuring-Modules/IIS7-Modules-Overview?Page=5"&gt;iis.net - Configuring the IIS7 Runtime&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://mvolo.com/blogs/serverside/archive/2007/08/15/Developing-IIS7-web-server-features-with-the-.NET-framework.aspx"&gt;Mike Volodarsky Blog -&amp;#160; Developing IIS7 web server features with the .NET framework&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;ASP.NET Provider Model&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn2.microsoft.com/en-us/library/ms972319.aspx"&gt;MSDN - Provider Model Design Pattern and Specification, Part 1&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn2.microsoft.com/en-us/library/aa478948.aspx"&gt;MSDN - Microsoft ASP.NET 2.0 Providers: Introduction&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn2.microsoft.com/en-us/library/ms178329.aspx"&gt;MSDN - ASP.NET Login Controls Overview&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn2.microsoft.com/en-us/library/yy40ytx0.aspx"&gt;MSDN - Web Site Administration Tool Overview&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn.microsoft.com/msdnmag/issues/07/01/ExtremeASPNET/default.aspx"&gt;MSDN Mag - Client-Side Web Service Calls with AJAX Extensions&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn2.microsoft.com/en-us/library/bb384297(VS.90).aspx"&gt;MSDN - Client Application Services&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.codeplex.com/MSFTDBProdSamples/release/projectReleases.aspx?releaseid=4004"&gt;AdventureWorksLT Sample Database&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://dev.mysql.com/downloads/connector/net/5.0.html"&gt;MySQL Connector - NET 5.1&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Security Hacks&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=EFB9C819-53FF-4F82-BFAF-E11625130C25&amp;amp;displaylang=en"&gt;Anti-XSS Library v1.5 Download&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.Fiddler2.com"&gt;www.Fiddler2.com&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.HelloSecureWorld.com"&gt;www.HelloSecureWorld.com&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.owasp.org/index.php/Top_10_2007"&gt;Open Source Web Application Project - Top 10 Exploits 2007&lt;/a&gt;&lt;/p&gt; &lt;a href="http://www.acunetix.com/news/paypal.htm"&gt;Exploit: Cross Site Scripting - Paypal&lt;/a&gt;   &lt;p&gt;&lt;a href="http://www.webappsec.org/projects/whid/list_id_2006-3.shtml"&gt;Exploit: SQL Injection - www.ri.gov&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.news.com/2100-1017-984585.html"&gt;Exploit: Cross Site Scripting - FTD&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://news.bbc.co.uk/2/hi/business/3984845.stm"&gt;Exploit: Insecure Direct Object Reference - Cahoots&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1238554,00.html"&gt;Exploit: Integer Overflow - Apple&lt;/a&gt;&lt;/p&gt;&lt;img src="http://blogs.msdn.com/aggbug.aspx?PostID=7140399" width="1" height="1"&gt;</description><category domain="http://blogs.msdn.com/benko/archive/tags/MSDN+Events/default.aspx">MSDN Events</category><category domain="http://blogs.msdn.com/benko/archive/tags/Authentication/default.aspx">Authentication</category><category domain="http://blogs.msdn.com/benko/archive/tags/Security/default.aspx">Security</category><category domain="http://blogs.msdn.com/benko/archive/tags/IIS/default.aspx">IIS</category></item></channel></rss>